[CALUG] ssh tunnel - port knocking

Chuck Frain chuck at chuckfrain.net
Thu Jan 6 21:59:51 EST 2011


One way to work this is what I've done at home.

I have a Linux based router behind the Verizon Actiontec router as a DMZ
device running DDNS. So from outside I ssh to my.homeip.net:22 it hits
the Actiontec, everything goes to the DMZ router's WAN port and gets sent
to the proper internal box. 

You can configure the port knocking to go through the actiontec to its
proper machine on the home network. 

A side benefit is that I have two wireless networks, one private for our
home network and one for family and friends that sits outside my network
but has access to the internet. 

The layout is basically:

INTERNET
 |
Actiontec Router w/ guest wireless
 |
Linux Router w/ private wireless
 |
Home Network

On Thu, 06 Jan 2011, Craig Younkins wrote:

> Regardless of the underlying application such as SSH, port knocking must be
> configured at the NATing device, likely the router. It is unlikely your
> router supports port knocking unless it is running linux.
> 
> Craig Younkins
> 
> 
> On Thu, Jan 6, 2011 at 1:48 PM, xxx xxx <XXX at XXX.XXX> wrote:
> 
> > How do you do ssh tunnel and port knocking with fios?
> >
> > --
> > www.a4yp.com
> >
> > _______________________________________________
> > CALUG mailing list
> > CALUG at unknownlamer.org
> > http://lists.unknownlamer.org/listinfo/calug
> >
> >

> _______________________________________________
> CALUG mailing list
> CALUG at unknownlamer.org
> http://lists.unknownlamer.org/listinfo/calug


-- 
Chuck Frain 
GPG Key: B2420431
http://www.chuckfrain.net




More information about the CALUG mailing list